For Employers

FyerX

Digital Forensics and Incident Response (DFIR) Specialist

Posted a day ago
5-10 years experience
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review

Create a cover letter for this job

Upload your resume and we draft a letter for this exact role, tailored to what it asks for.

  • Tailored to this role
  • Based on your resume
  • Fully editable
AI Summary

Lead high-severity incident response, threat hunting, containment, and forensic investigations, including analysis of memory, disks, system logs, malware, and network traffic. Preserve legally admissible evidence, reconstruct attack timelines, produce investigation reports, and coordinate breach compliance matters with legal and GRC teams.

This is a remote position.

Digital Forensics and Incident Response (DFIR) Specialist

Job Details
  • Employment Type: Contract
  • Work Mode: Remote
  • Location: Offshore
  • Total Experience Required: 5 to 8 years
  • Relevant Experience Required: 4+ years of dedicated experience conducting digital forensics investigations and deep incident response execution
  • Mandatory Certification: GIAC Certified Forensic Analyst (GCFA), GIAC Certified Incident Handler (GCIH), or Certified Computer Examiner (CCE)

Job Summary
We are seeking an experienced DFIR Specialist to lead our post-breach investigation pipelines, threat containment lifecycles, and digital forensics operations. The ideal candidate will isolate compromised systems, perform low-level disk and memory trace analyses, reconstruct complex attack timelines, and preserve legally admissible digital evidence to help the business understand and recover from advanced cyber incidents.

Key Responsibilities
  • Direct high-severity incident response lifecycles, spearheading rapid threat hunting sweeps, system isolations, and malicious compromise containment operations across the global network.
  • Perform deep digital forensic investigations, analyzing live volatile host memory dumps, master file tables (MFT), system registries, and volatile kernel memory layers.
  • Reconstruct chronological threat attack timelines, tracing advanced persistence methods, command-and-control (C2) callback patterns, lateral network movements, and data exfiltration markers.
  • Enforce rigid chain-of-custody data preservation parameters, collecting digital image snapshots of target drives and network captures in compliance with international legal and evidentiary standards.
  • Analyze complex malware behaviors and payload scripts, reverse engineering malicious scripts, unpacking obfuscated code loops, and translating findings into actionable local indicator blocks (IOCs).
  • Author detailed forensic investigation runbooks and expert reports, presenting clear summaries of breach roots, compromised asset matrices, data exposure volumes, and recovery steps to legal and executive stakeholders.
  • Collaborate with GRC and legal compliance teams, evaluating data breach notification requirements in accordance with corporate mandates and regional privacy laws (e.g., GDPR, HIPAA).



Requirements

  • 5 to 8 years of core cybersecurity systems engineering experience, with 4+ dedicated years actively running complex post-breach digital forensic track assessments.
  • Strong technical mastery of advanced forensic software environments (e.g., EnCase, FTK, Volatility, X-Ways Forensics), memory acquisition tools, and packet analysis suites.
  • Deep structural understanding of file system layout matrices (NTFS, EXT4, FAT), operating system log architectures, network layer packet capture parsing, and malware persistence mechanics.
  • Mandatory certification: GCFA, GCIH, or CCE.

Preferred Qualifications
  • Prior experience dealing with ransomware negotiations or navigating high-stakes ransomware containment events under tight timeline expectations.
  • Scripting background in Python or Perl used to build custom string searching queries or parse non-standard database application trace files.





Automatically Apply to the Best Remote Jobs

Stop the endless job search. Our AI finds and applies to the best jobs for you.

Try it Now
Keep looking

Similar Jobs

See all Remote Others jobs →

AI Response Evaluator

Freelance France, Japan, Mexico +3 more $10K – $20K Others

Medical Clinical Reviewer Doctor (MD/DO) (Part-time, Remote)

Full Time United States Others

(English C1) Customer Support Consultant (LATAM, remote)

Full Time Mexico Others

HR|Payroll sprendimų Diegėjas (-a) / Konsultantas (-ė)

Full Time Lithuania Others

Product Owner - Imunify Email (remote work)

Full Time Poland Others

Group Health Quality Analyst 1 (Nights)

Full Time United States Others
Apply Now

Personalize your Remote Job Search in 3 Easy Steps!

Featuring 216,306+ Jobs in Others

Answer easy questions

Answer easy questions

216,306+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified